PT-2025-52169 · Fantasticplugins+1 · Abandoned Cart Recovery For Woocommerce+1

Denver Jackson

·

Published

2025-12-18

·

Updated

2025-12-18

·

CVE-2025-64222

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions FantasticPlugins WooCommerce Recover Abandoned Cart versions through 24.6.0
Description An authorization issue exists in FantasticPlugins WooCommerce Recover Abandoned Cart. The issue involves incorrectly configured access control security levels, potentially allowing unauthorized access.
Recommendations Update FantasticPlugins WooCommerce Recover Abandoned Cart to a version later than 24.6.0.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-64222

Affected Products

Woocommerce
Abandoned Cart Recovery For Woocommerce